12/11/2014

spicy belgian online tempoffice tobasco.be hacked and leaked by #rex mundi

well it is spicey allright

 

First they have a logon to a secure space but it has NO ENCRYPTION (SSL) at all  so if this one is breached all the information (login and passwords) is in CLEARTEXT (just downloading)

https://www.ssllabs.com/ssltest/analyze.html?d=tobasco.be&s=193.104.8.210

and this another public form (with everything in cleartext)

http://www.tobasco.be/content.php?id=875

some forms or documents seem to have gone meanwhile

but the best is yet to come ........

 

Permalink | |  Print |  Facebook | | | | Pin it! |

The comments are closed.